hw7393.craftum.io
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCrisk.com may earn a referral commission when users sign up through this link.
Description of hw7393.craftum.io
This domain appears to be a subdomain hosted on Craftum, a website-building platform. The visible page is in Russian and currently displays a service-generated notice stating that the site is temporarily unavailable, likely because the subscription associated with the site has ended or requires renewal. Links on the page point back to Craftum account, login, and registration pages rather than to independent site content.
Based on the domain structure and the screenshot, hw7393.craftum.io does not currently appear to function as a standalone public website with active content. Instead, it appears to be an inactive or disabled hosted page within the Craftum platform environment. The underlying purpose of the subdomain cannot be fully verified from the current page alone.
Safety Assessment for hw7393.craftum.io
Scan results indicate elevated risk signals at the time of this scan. The domain was flagged by 17 out of 91 security engines, with multiple detections describing the page as phishing or otherwise malicious. In addition, one threat database listing was present, while other major blacklist checks shown in the scan were clean. A separate malware scan also reported suspicious findings on the page and on referenced external resources, although those heuristic detections are lower-confidence than the broader multi-engine phishing consensus.
The current screenshot shows a temporary unavailability notice rather than an active phishing form, which may mean the hosted content has been disabled or replaced since earlier detections were recorded. Even so, the volume and consistency of phishing-related flags across multiple security engines is a strong cautionary signal, especially for a low-visibility subdomain with no traffic ranking and no clear legitimate site identity.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site uses a valid SSL/TLS certificate issued by a recognized certificate authority, with expiry listed as 2026-12-19. It resolves to IP address 92.255.111.71, appears to be served by nginx, and is hosted by JSC "TIMEWEB" in St Petersburg, Russia. The domain is a subdomain under craftum.io and uses Craftum nameservers. DNSSEC is not enabled for the domain.
From a security posture perspective, the presence of HTTPS is a positive baseline signal, but it should not be treated as proof of legitimacy. The more notable concerns in this scan are the phishing-related detections and suspicious external resource references rather than the TLS setup itself.
Share your experience with this website. Was it safe? Did you encounter any issues?